Browsertrix: Arbitrary Command Injection due to Improper Command Sanitization in Git URLs specified as Custom Behaviors (CVE-2026-54501) | HOL Guard CVE